Researchers have discovered a new ransomware called ‘Ymir’, which targets and encrypts systems that were previously compromised by the RustyStealer malware.

402/67 Wednesday, November 13, 2024 Researchers at Kaspersky have discovered a new type of ransomware called Ymir, which is being used in attacks alongside the RustyStealer malware. RustyStealer is a data-stealing program that infiltrates the victim’s system before deploying Ymir ransomware. Ymir targets networks containing sensitive information, with RustyStealer employing techniques to collect credentials and […]

ThaiCERT

November 13, 2024

Palo Alto Networks Warns of Remote Code Execution (RCE) Vulnerability

401/67 Tuesday, November 12, 2024 Palo Alto Networks has issued an urgent alert for customers to review the security settings of the PAN-OS management interface following the discovery of a potential Remote Code Execution (RCE) vulnerability that could be exploited. Although the source of the allegations remains unclear, the company is closely monitoring the situation. […]

ThaiCERT

November 12, 2024

SteelFox: New Malware Targets Users of Pirated Software

400/67 Tuesday, November 12, 2024 Researchers from Securelist have discovered a new malware called SteelFox that is spreading through fake software activation tools, primarily targeting Microsoft Windows users who download pirated software like Foxit PDF Editor, AutoCAD, and JetBrains. The malware attack began in February 2023, and over 11,000 victims have been identified worldwide so […]

ThaiCERT

November 12, 2024

Newpark Resources, an oil supplier based in Texas, has been hit by a ransomware attack.

399/67 Monday, November 11, 2024 On October 29, 2024, Newpark Resources, a major oil industry supplier in the United States, was impacted by a ransomware attack that temporarily disrupted access to some of its information systems and business applications. Upon detecting the incident, the company promptly activated its cyber threat response plan and initiated an […]

ThaiCERT

November 11, 2024

A critical vulnerability has been discovered in older D-Link NAS devices, affecting over 60,000 units at risk.

398/67 Monday, November 11, 2024 D-Link has issued a warning regarding over 60,000 end-of-life (EoL) network-attached storage (NAS) devices that are being targeted due to a vulnerability that could allow malicious actors to take control of the devices. This vulnerability, identified as CVE-2024-10914, has been given a critical severity rating of 9.2. The flaw stems […]

ThaiCERT

November 11, 2024

Memorial Hospital and Manor Hit by Ransomware Attack

397/67 Friday, November 8, 2024 Memorial Hospital and Manor in Bainbridge, Georgia, was hit by a ransomware attack, temporarily disabling its electronic health records (EHR) system. The hospital provides a range of medical services to residents of Decatur County and surrounding areas, including emergency care, surgeries, and long-term care at its nursing home facility. In […]

ThaiCERT

November 8, 2024

Canada Orders TikTok to Cease Operations Due to Security Concerns

396/67 Friday, November 8, 2024 The Canadian government has issued an order for TikTok, owned by China’s ByteDance, to cease its operations in the country, citing national security concerns. This decision followed an assessment conducted by Canada’s security and intelligence community. The government emphasized that it will not restrict general access to TikTok for Canadians […]

ThaiCERT

November 8, 2024

Vulnerability CVE-2024-43093 in Android is currently being exploited in attacks.

395/67 Thursday, November 7, 2024 vulnerability in the Android operating system, which is actively being exploited by threat actors. This vulnerability involves privilege escalation within the Android Framework component, and if successfully exploited, it could allow unauthorized access to critical system folders such as ‘Android/data,’ ‘Android/obb,’ and ‘Android/sandbox.’ While Google has not yet disclosed the […]

ThaiCERT

November 7, 2024

Interpol conducted Operation Synergia II, seizing servers and arresting suspects.

394/67 Thursday, November 7, 2024 Interpol, in cooperation with global law enforcement agencies, announced the arrest of 41 individuals and the shutdown of 1,037 cybercrime-related server infrastructures as part of an operation called Operation Synergia II, which spanned 95 countries between April and August 2024. This operation was supported by leading cybersecurity companies such as […]

ThaiCERT

November 7, 2024

A vulnerability in Okta Verify Agent for Windows allows attackers to steal user passwords.

393/67 Wednesday, November 6, 2024 Okta, a leading technology company in Identity and Access Management (IAM), has patched a critical vulnerability in Okta Verify for Windows that could potentially allow attackers to steal user passwords. This vulnerability was discovered during routine penetration testing and affects Okta Verify Agent versions 5.0.2 to 5.3.2 on Windows. It […]

ThaiCERT

November 6, 2024
1 13 14 15 16